Portainer · Portainer Community Edition · CVE-2026-33590
**Name of the Vulnerable Software and Affected Versions**
Portainer CE (affected versions not specified)
**Description**
Insecure default settings grant regular non-administrative users privileges that allow access to the host filesystem and host-level code execution. An authenticated user with endpoint access can exploit these settings to read host files or obtain root-equivalent access on the host.
**Recommendations**
At the moment, there is no information about a newer version that contains a fix for this vulnerability.